1035 Commits (5.6.1)

Author SHA1 Message Date
Steve Riesenberg c7ffd2513a Update copyright year 4 years ago
Steve Riesenberg b3e0f167ff Fix case sensitive headers comparison 4 years ago
Marcus Da Coregio caad3d57e2 Improve log message when no CSRF token found 4 years ago
Emil Sierżęga 04b47c5928 Fixed various broken links in Javadocs 4 years ago
Emil Sierżęga a188138715 Javadocs author tag doesn't work in methods 4 years ago
Rob Winch f836897190 Checkstyle Fixes 4 years ago
Rob Winch e1f4ec1137 Fix Jackson 4 years ago
Marcus Da Coregio faec20bc69 Update DefaultWebInvocationPrivilegeEvaluator to use current ServletContext 4 years ago
Josh Cummings 7b98c2ea95 Restructure SwitchUserFilter Logs 4 years ago
Eleftheria Stein 7d81a52780 Allow AuthenticationPrincipal argument type to be primitive 4 years ago
heowc 84d173c310 Fix typo 4 years ago
Bogdan Ilchyshyn a4c088a3b3 Introducing WebSessionServerLogoutHandler 5 years ago
Hiroshi Shirosaki 6f3e346b76 Add SecurityContextHolder#addListener 5 years ago
Josh Cummings b8d51725c7 Immutable SecurityContext 5 years ago
Rob Winch b6ff4d3674 Fix mockito UnnecessaryStubbingException 5 years ago
Rob Winch 3e93b024d6 openrewrite Junit Migration 5 years ago
Rob Winch 14240b2559 Remove Powermock 5 years ago
Evgeniy Cheban d121ab9565 Support A Well-Known URL for Changing Passwords 5 years ago
Alexey Markevich 3219fd554d DigestAuthenticationFilter decodes nonce only once 5 years ago
Steve Riesenberg 3bb8e1d200 Remove redundant translations in spring-security-web 5 years ago
Ruben Suarez Alvarez 7cd344acab
Add spanish translation of insufficient authentication and cookie stolen 5 years ago
Josh Cummings ca76c54471
Polish CsrfWebFilterTests 5 years ago
Tomoki Tsubaki 0c8b6df82a
Cache Mono that generate the CSRF token 5 years ago
AlexeyAnufriev baac9e0cf2 Properly clean cookies with context path after logout 5 years ago
Marcus Hert da Coregio 2a7998d0fc Adjust createNewSessionIfAllowed to prevent NPE 5 years ago
César Revert cf74ad3a52 Anonymous in ExceptionTranslationWebFilter 5 years ago
Craig Andrews a7fbae8355 Add test for RequestedUrlRedirectInvalidSessionStrategy 5 years ago
Craig Andrews 0e6d47b082 Add guard around debug logging involving string concatenation 5 years ago
Craig Andrews 0af74ce134 Use ServletUriComponentsBuilder instead of UrlPathHelper 5 years ago
Craig Andrews 2bcd4627fa Eliminate use of Optional 5 years ago
Craig Andrews 10a264c144 Add RequestedUrlRedirectInvalidSessionStrategy implemention of InvalidSessionStrategy 5 years ago
Josh Cummings df6ebc7051
Rename DelegatingAuthorizationManager 5 years ago
Thomas Vitale e2993d93e1 Make Csrf cookie secure flag configurable (WebFlux) 5 years ago
Josh Cummings cb6e4f4a11
Add NPE Guards 5 years ago
Craig Andrews 7dc4de05b1 Add guard around logger.debug statement 5 years ago
Josh Cummings 4f7d529c5d
Polish Csrf Tests 5 years ago
佚名 87ed527023
Add null check in CsrfFilter and CsrfWebFilter 5 years ago
Rob Winch f3f1106624 Update io.spring.javaformat to 0.0.27 5 years ago
Rob Winch 95da12110b
Additional Test for HttpSessionSecurityContextRepository 5 years ago
Rob Winch 3116369f02
Optimize HttpSessionSecurityContextRepository 5 years ago
Josh Cummings 107f38fff9
Polish Tests 5 years ago
happier233 873b9bdbca
Configure CurrentSecurityContextArgumentResolver BeanResolver 5 years ago
Evgeniy Cheban 77484018bb Reconsider AntPathRequestMatcher matching logic 5 years ago
Rob Winch 0201c31deb Fix Checkstyle for CsrfWebFilter 5 years ago
Rob Winch a1083d9a5c Fix CsrfWebFilter error message when expected CSRF not found 5 years ago
Josh Cummings 160a4a3676
Reformat MvcRequestMatcher 5 years ago
Evgeniy Cheban 8449df9fd2
Consider Aligning MvcRequestMatcher's matching methods 5 years ago
Zeeshan Adnan 848bd44837
Remove unused code 5 years ago
Rob Winch 40e027c56d Constant Time Comparison for CSRF tokens 5 years ago
Josh Cummings c066e23a86
Add @since attributes 5 years ago